This is crazy! So is it really true that browser extensions can steal cookies, and how is this still not fixed by browser developers? https://cointelegraph.com/news/hackers-steal-millions-chrome-plugin-binance-scam
I been asking myself for years just what the hold up is about that. It can't be THAT hard to create a fix.
Yes this is crazy, why give extensions full acces to the browser profile folder. That's why I believe browser security is still a bit of a joke, I mean they put so much effort into building sandboxes that protects against remote code execution, but extensions are still way too powerful. I wonder if the new MV3 (that will cripple adblockers) will do something about this huge hole.